Real SIM-card SMS verification for AI agents via VirtualSMS MCP server. TRIGGERS: SMS verification, OTP code, phone number, virtual number, SIM card, two-factor authentication, account verification, WhatsApp verify, Telegram verify, real SIM, agent phone, MCP SMS, virtualsms. Use when an agent needs to receive an SMS…
This skill should be used when the user asks to "run a security scan", "check for vulnerabilities", "audit compliance", "check certificate expiry", "scan open ports", or mentions security reviews, CIS benchmarks, or compliance assessments on remote servers.
Pseudonymises medical and clinical documents by replacing patient identifiers with labelled tokens (e.g. [PATIENTNAME1], [NHSNUMBER1], [DATEOFBIRTH1]) so the text can be safely processed by AI or shared, with clinical meaning intact. Combines a deterministic pattern layer (NHS numbers with Modulus-11 validation, UK…
Comprehensive WooCommerce plugin development skill that enforces WordPress and WooCommerce coding standards, security best practices, and end-to-end testing for every file created. Use this skill whenever the user wants to create, scaffold, build, or start a WooCommerce plugin, WooCommerce extension, or WordPress…
Audit and enable security-oriented Xcode build settings. Progressively enables compiler warnings, static analyzer checkers, and Enhanced Security features. Use when: user wants to secure their Xcode project, audit security settings, enable hardening, review security posture of build configuration, set up…
Detect insecure file upload vulnerabilities in a codebase using a three-phase approach: discovery (find all upload sites), batched verify (check extension bypass and related issues in parallel subagents, 3 sites each), and merge (consolidate batch results). Requires sast/architecture.md (run sast-analysis first).…
This skill should be used when the user asks to "scan for PHI", "detect PII", "HIPAA compliance check", "audit for protected health information", "find sensitive healthcare data", "generate HIPAA audit report", "check code for PHI leakage", "scan logs for PHI", "check authentication on PHI endpoints", "scan FHIR…
Audytuje bezpieczeństwo skilla, pluginu lub agenta Claude Code przed instalacją. Warstwa statyczna (heurystyki) plus subagent-audytor tylko do odczytu wykrywają prompt injection, kradzież sekretów, exfiltrację danych, obfuskację i persistence. Pozyskuje kod do izolowanego katalogu tymczasowego, nigdy bezpośrednio do…
Manage Discord channel access for cursor-discord-channels — pairing, allowlists, trustedBots. Use when configuring the bridge or when the user asks about Discord bot access.
HefestoAI is a pre-commit code quality guardian that detects semantic drift, security vulnerabilities, and reliability anti-patterns in AI-generated code.
Create or refine a concise, normative security policy ("Blue Book") for sensitive applications. Use when users need a threat model, data classification rules, auth/session policy, logging and audit requirements, retention/deletion expectations, incident response, or security gates for apps handling PII/PHI/financial…
Discover the best Claude Code extensions on the web AND tell the user how safe each one is before installing. Reads the user's Claude Code setup (project context, memory, history), asks a few questions to understand their goal (general or a specific idea), then surfaces a ranked shortlist - name, what it does, what…
Elite manual security code review skill for deep, adversarial vulnerability hunting and exploit-chain discovery. Trigger when the user asks to: "do a deep security audit", "manual code review", "find exploit chains", "hunt for logic bugs", "red-team this codebase", "do an offensive security review", "review this like…
An AI-assisted workflow for investigating security alerts in a security operations center, or SOC—the team and systems that monitor an organisation for attacks. It can analyse alerts, investigate their origins, prepare response scripts, and record approved rules and reports.
Use when a codebase needs an adversarial security review or compliance readiness assessment — web UI and API security, authentication and access control, licensing or paywall bypass, secrets exposure, dependency vulnerabilities, and SOC 2 / ISO 27001 / HIPAA / PCI DSS / GDPR readiness; when the user mentions security…
Intent-aware destination verification for AI agents. Use before an agent opens a URL to assess destination risk, confirm task alignment, and obtain an explicit ALLOW or DENY decision before navigation.
A review tool for deciding whether a coding-agent skill is safe and worthwhile to install. It checks for risky behavior and scores how precisely, effectively, and efficiently the skill works.
Provide a standalone Simplified Chinese Windows app and CLI workflows to assess C: drive health, clean a fixed allowlist of regenerable junk, find large user files, detect exact duplicates with SHA-256, and relocate or recycle explicitly approved ordinary user files without breaking Windows or installed applications.…
★not rated 6 16d agoA124 tokens
originalMIT
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: